cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2245
Views
3
Helpful
6
Replies

sanitize/clear a PIX 506E

cboggs2007
Level 1
Level 1

I need to scrub (overwrite) the non-volatile memory of a PIX-506E for security purposes... anyone have any idea how to accomplish this? It's just a Flash EPROM, right?

I've found a couple different commands for clearing flash, etc., but they all refer to specific router models, not PIX firewalls.

Any help is greatly appreciated.

6 Replies 6

JORGE RODRIGUEZ
Level 10
Level 10

Hi, if you want to clear all pix config why don't just set the device to factory defaults or erase all current config, you could do it in couple of ways..either do it with a " write erase " to erase configuration from flash then reboot,

or set the pix to factory defaults.

e.g

on enable mode issue "configure factory-default "

HTH

Jorge

Jorge Rodriguez

Thats part of it, but I need to erase everything on the flash, not just the config (unless that is all that is stored there)

I noticed a jumper near the battery called "J5", does this also work for a reset?

Normally you don't need to go that far with jumpers, the seting to factofy defaults is good, however, " write erase " command followed by a "reload " from console connection should completely erase any configuration from firewall. You can confirm this by after reloading issue " show start " or " show run " and you will see the configuration is gone.

Rgds

Jorge

Jorge Rodriguez

Thanks Jorge,

This situation is slightly different. I'm not just trying to clear the config for a fresh start or recovery, but actually clear the entire flash and any other non-volatile memory on the PIX for security reasons. So I need to do anything possible to clear the PIX, even above and beyond normal recovery steps.

Is the config the only thing stored in flash memory? Does the jumper clear the flash or does it clear something else?

Have not explored the complete deletion of flash on PIXs but you may try " clear flashfs " and see if that works.

http://www.cisco.com/en/US/docs/security/pix/pix63/command/reference/c.html#wp1091147

Jorge Rodriguez

you also need to zeroize any rsa keys that might have been created.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card